{"id":"https://openalex.org/W4401943265","doi":"https://doi.org/10.1109/tsc.2024.3451179","title":"Enforcing Corporate Governance Controls With Cloud-Based Services","display_name":"Enforcing Corporate Governance Controls With Cloud-Based Services","publication_year":2024,"publication_date":"2024-08-28","ids":{"openalex":"https://openalex.org/W4401943265","doi":"https://doi.org/10.1109/tsc.2024.3451179"},"language":"en","primary_location":{"id":"doi:10.1109/tsc.2024.3451179","is_oa":true,"landing_page_url":"https://doi.org/10.1109/tsc.2024.3451179","pdf_url":null,"source":{"id":"https://openalex.org/S204223317","display_name":"IEEE Transactions on Services Computing","issn_l":"1939-1374","issn":["1939-1374","2372-0204"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Services Computing","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://doi.org/10.1109/tsc.2024.3451179","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5024313767","display_name":"Sabrina De Capitani di Vimercati","orcid":"https://orcid.org/0000-0003-0793-3551"},"institutions":[{"id":"https://openalex.org/I189158943","display_name":"University of Milan","ror":"https://ror.org/00wjc7c48","country_code":"IT","type":"education","lineage":["https://openalex.org/I189158943"]}],"countries":["IT"],"is_corresponding":true,"raw_author_name":"Sabrina De Capitani di Vimercati","raw_affiliation_strings":["Universit&#x00E0; degli Studi di Milano, Milano, Italy"],"raw_orcid":"https://orcid.org/0000-0003-0793-3551","affiliations":[{"raw_affiliation_string":"Universit&#x00E0; degli Studi di Milano, Milano, Italy","institution_ids":["https://openalex.org/I189158943"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5069907040","display_name":"Sara Foresti","orcid":"https://orcid.org/0000-0002-1658-6734"},"institutions":[{"id":"https://openalex.org/I189158943","display_name":"University of Milan","ror":"https://ror.org/00wjc7c48","country_code":"IT","type":"education","lineage":["https://openalex.org/I189158943"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Sara Foresti","raw_affiliation_strings":["Universit&#x00E0; degli Studi di Milano, Milano, Italy"],"raw_orcid":"https://orcid.org/0000-0002-1658-6734","affiliations":[{"raw_affiliation_string":"Universit&#x00E0; degli Studi di Milano, Milano, Italy","institution_ids":["https://openalex.org/I189158943"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5026292704","display_name":"Stefano Paraboschi","orcid":"https://orcid.org/0000-0003-0399-1738"},"institutions":[{"id":"https://openalex.org/I11039511","display_name":"University of Bergamo","ror":"https://ror.org/02mbd5571","country_code":"IT","type":"education","lineage":["https://openalex.org/I11039511"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Stefano Paraboschi","raw_affiliation_strings":["Universit&#x00E0; degli Studi di Bergamo, Bergamo, Italy"],"raw_orcid":"https://orcid.org/0000-0003-0399-1738","affiliations":[{"raw_affiliation_string":"Universit&#x00E0; degli Studi di Bergamo, Bergamo, Italy","institution_ids":["https://openalex.org/I11039511"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5091211008","display_name":"Pierangela Samarati","orcid":"https://orcid.org/0000-0001-7395-4620"},"institutions":[{"id":"https://openalex.org/I189158943","display_name":"University of Milan","ror":"https://ror.org/00wjc7c48","country_code":"IT","type":"education","lineage":["https://openalex.org/I189158943"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Pierangela Samarati","raw_affiliation_strings":["Universit&#x00E0; degli Studi di Milano, Milano, Italy"],"raw_orcid":"https://orcid.org/0000-0001-7395-4620","affiliations":[{"raw_affiliation_string":"Universit&#x00E0; degli Studi di Milano, Milano, Italy","institution_ids":["https://openalex.org/I189158943"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5024313767"],"corresponding_institution_ids":["https://openalex.org/I189158943"],"apc_list":null,"apc_paid":null,"fwci":0.746,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.77718559,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":95},"biblio":{"volume":"17","issue":"6","first_page":"3583","last_page":"3596"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10270","display_name":"Blockchain Technology Applications and Security","score":0.5317999720573425,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10270","display_name":"Blockchain Technology Applications and Security","score":0.5317999720573425,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.732733428478241},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6172515153884888},{"id":"https://openalex.org/keywords/corporate-governance","display_name":"Corporate governance","score":0.6107078790664673},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3701173663139343},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.35822632908821106},{"id":"https://openalex.org/keywords/process-management","display_name":"Process management","score":0.35139214992523193},{"id":"https://openalex.org/keywords/finance","display_name":"Finance","score":0.1110372245311737},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.09371152520179749}],"concepts":[{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.732733428478241},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6172515153884888},{"id":"https://openalex.org/C39389867","wikidata":"https://www.wikidata.org/wiki/Q380767","display_name":"Corporate governance","level":2,"score":0.6107078790664673},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3701173663139343},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.35822632908821106},{"id":"https://openalex.org/C195094911","wikidata":"https://www.wikidata.org/wiki/Q14167904","display_name":"Process management","level":1,"score":0.35139214992523193},{"id":"https://openalex.org/C10138342","wikidata":"https://www.wikidata.org/wiki/Q43015","display_name":"Finance","level":1,"score":0.1110372245311737},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.09371152520179749}],"mesh":[],"locations_count":4,"locations":[{"id":"doi:10.1109/tsc.2024.3451179","is_oa":true,"landing_page_url":"https://doi.org/10.1109/tsc.2024.3451179","pdf_url":null,"source":{"id":"https://openalex.org/S204223317","display_name":"IEEE Transactions on Services Computing","issn_l":"1939-1374","issn":["1939-1374","2372-0204"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Services Computing","raw_type":"journal-article"},{"id":"pmh:oai:air.unimi.it:2434/1128716","is_oa":true,"landing_page_url":"https://hdl.handle.net/2434/1128716","pdf_url":null,"source":{"id":"https://openalex.org/S4306400516","display_name":"Archivio Istituzionale della Ricerca (Universita Degli Studi Di Milano)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I189158943","host_organization_name":"University of Milan","host_organization_lineage":["https://openalex.org/I189158943"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"info:eu-repo/semantics/article"},{"id":"pmh:oai:aisberg.unibg.it:10446/287760","is_oa":true,"landing_page_url":"https://hdl.handle.net/10446/287760","pdf_url":null,"source":{"id":"https://openalex.org/S4377196347","display_name":"Aisberg (University of Bergamo)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I11039511","host_organization_name":"University of Bergamo","host_organization_lineage":["https://openalex.org/I11039511"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"info:eu-repo/semantics/article"},{"id":"pmh:oai:zenodo.org:14749098","is_oa":true,"landing_page_url":"https://doi.org/10.1109/TSC.2024.3451179","pdf_url":null,"source":{"id":"https://openalex.org/S4306400562","display_name":"Zenodo (CERN European Organization for Nuclear Research)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I67311998","host_organization_name":"European Organization for Nuclear Research","host_organization_lineage":["https://openalex.org/I67311998"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"info:eu-repo/semantics/article"}],"best_oa_location":{"id":"doi:10.1109/tsc.2024.3451179","is_oa":true,"landing_page_url":"https://doi.org/10.1109/tsc.2024.3451179","pdf_url":null,"source":{"id":"https://openalex.org/S204223317","display_name":"IEEE Transactions on Services Computing","issn_l":"1939-1374","issn":["1939-1374","2372-0204"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Services Computing","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":29,"referenced_works":["https://openalex.org/W1499220070","https://openalex.org/W1547131737","https://openalex.org/W2021328268","https://openalex.org/W2042220809","https://openalex.org/W2043508455","https://openalex.org/W2071940270","https://openalex.org/W2118329289","https://openalex.org/W2144591754","https://openalex.org/W2151998960","https://openalex.org/W2528277418","https://openalex.org/W2582140688","https://openalex.org/W2618202244","https://openalex.org/W2751808730","https://openalex.org/W2778086002","https://openalex.org/W2782570088","https://openalex.org/W2951309617","https://openalex.org/W2980759111","https://openalex.org/W2982411837","https://openalex.org/W3041223433","https://openalex.org/W3118139496","https://openalex.org/W3129524288","https://openalex.org/W3194588796","https://openalex.org/W3198877436","https://openalex.org/W4313467283","https://openalex.org/W4378714401","https://openalex.org/W4380150612","https://openalex.org/W4385656525","https://openalex.org/W4387698764","https://openalex.org/W4399993292"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W4244478748","https://openalex.org/W4223488648","https://openalex.org/W2134969820","https://openalex.org/W2251605416","https://openalex.org/W2560439919","https://openalex.org/W4389340727","https://openalex.org/W3150465815","https://openalex.org/W1997222214","https://openalex.org/W2802581102"],"abstract_inverted_index":{"More":[0],"and":[1,22,73,90,93,130,144],"more":[2],"organizations":[3],"are":[4,27],"today":[5],"using":[6],"the":[7,48,68,87,95,98,106,115,118,128,134,141,154,157,167],"cloud":[8,49,110],"for":[9,19,39,61,67,77,147],"their":[10],"business":[11,34],"as":[12],"a":[13,84,124],"convenient":[14],"alternative":[15],"to":[16,101,108],"in-house":[17],"solutions":[18,26],"storing,":[20],"processing,":[21],"managing":[23],"data.":[24],"Cloud-based":[25],"then":[28],"permeating":[29],"almost":[30],"all":[31],"aspects":[32],"of":[33,70,86,97,114,120,137,156,166],"organizations,":[35],"resulting":[36],"appealing":[37],"also":[38],"sensitive":[40],"or":[41],"security":[42],"critical":[43],"applications,":[44],"whose":[45],"enforcement":[46,69,113],"in":[47],"requires":[50],"however":[51],"particular":[52],"care.":[53],"In":[54],"this":[55],"article,":[56],"we":[57],"provide":[58],"an":[59],"approach":[60,81],"securely":[62],"relying":[63],"on":[64,83,94,127,131,140],"cloud-based":[65,161],"services":[66],"Internal":[71],"Controls":[72],"Audit":[74],"(ICA)":[75],"functions":[76],"corporate":[78],"governance.":[79],"Our":[80,151],"builds":[82],"formalization":[85],"ICA":[88,132,158],"process":[89,107,159],"its":[91],"requirements":[92,116],"consideration":[96],"protection":[99,168],"guarantees":[100],"be":[102],"provided":[103],"when":[104],"outsourcing":[105],"external":[109],"services.":[111],"The":[112],"leverages":[117],"use":[119],"selective":[121],"encryption":[122],"providing":[123],"self-protection":[125],"layer":[126],"data":[129],"reports,":[133],"hierarchical":[135],"organization":[136],"keys":[138],"based":[139],"organizational":[142],"structure,":[143],"compact":[145],"tags":[146],"regulating":[148],"write":[149],"operations.":[150],"solution":[152],"enables":[153],"management":[155],"with":[160],"services,":[162],"while":[163],"ensuring":[164],"satisfaction":[165],"requirements.":[169]},"counts_by_year":[{"year":2025,"cited_by_count":1}],"updated_date":"2025-12-21T01:58:51.020947","created_date":"2024-08-29T00:00:00"}
